We're nftables-gated to mesh+LAN; the browser-attack threat doesn't apply, and the default whitelist (127.0.0.1/localhost/[::1] only) blocks every LAN/mesh client. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>
We're nftables-gated to mesh+LAN; the browser-attack threat doesn't apply, and the default whitelist (127.0.0.1/localhost/[::1] only) blocks every LAN/mesh client. Co-Authored-By: Claude Opus 4.7 (1M context) <noreply@anthropic.com>